CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS
Percentile
15.6%
io_uring use work_flags to determine which identity need to grab from the
calling process to make sure it is consistent with the calling process when
executing IORING_OP. Some operations are missing some types, which can lead
to incorrect reference counts which can then lead to a double free. We
recommend upgrading the kernel past commit
df3f3bb5059d20ef094d6b2f0256c4bf4127a859
Author | Note |
---|---|
rodrigo-zaiden | duplicate or much related to CVE-2022-2209 |
sbeattie | initial investigation indicates that this likely only affects 5.10 and earlier, but not as far back as 5.4. But everything about this issue is unclear. |
git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git/commit/?h=linux-5.10.y&id=df3f3bb5059d20ef094d6b2f0256c4bf4127a859
kernel.dance/#df3f3bb5059d20ef094d6b2f0256c4bf4127a859
launchpad.net/bugs/cve/CVE-2022-2327
nvd.nist.gov/vuln/detail/CVE-2022-2327
security-tracker.debian.org/tracker/CVE-2022-2327
www.cve.org/CVERecord?id=CVE-2022-2327